Vulnerabilities > E107Coders

DATE CVE VULNERABILITY TITLE RISK
2009-03-06 CVE-2008-6438 SQL Injection vulnerability in E107Coders Macguru Blog Engine Plugin 2.2
SQL injection vulnerability in macgurublog_menu/macgurublog.php in the MacGuru BLOG Engine plugin 2.2 for e107 allows remote attackers to execute arbitrary SQL commands via the uid parameter, a different vector than CVE-2008-2455.
network
low complexity
e107coders e107 CWE-89
7.5
2008-05-27 CVE-2008-2455 SQL Injection vulnerability in E107Coders E107 Blog Engine 2.2
SQL injection vulnerability in comment.php in the MacGuru BLOG Engine plugin 2.2 for e107 allows remote attackers to execute arbitrary SQL commands via the rid parameter.
network
low complexity
e107coders CWE-89
7.5